Skip to content

Security: KernFerm/Pulse-Downloader

SECURITY.md

Security Policy

Version: 0.0.30Rz4vO


Supported Versions

  • Only the latest stable release of PulseDownloader is supported for security updates.
  • Beta version: 0.0.30Rz4vO — ready for public use, but still in beta mode.
  • Please report any issues or feedback to help improve the application.

Reporting Vulnerabilities

  • Please report security issues by opening an issue on GitHub or contacting the maintainer directly.
  • Do not disclose vulnerabilities publicly until they are resolved.

Security Practices

  • All user inputs are sanitized to prevent injection and path traversal attacks.
  • Filenames and output paths are validated and sanitized.
  • Dependencies are maintained and updated regularly.
  • Only download content you have legal rights to access.

Dependencies

  • See requirements.txt for a complete list of dependencies.
  • PulseDownloader relies on well-maintained libraries such as yt-dlp, requests, tqdm, and PyQt5.

There aren’t any published security advisories